A novel intrusion detection system for a local computer network

被引:0
|
作者
Tokhtabayev, A. [1 ]
Altaibek, A. [2 ]
Skormin, V. [1 ]
Tukeyev, U. [2 ]
机构
[1] Binghamton Univ, Binghamton, NY USA
[2] Kazakh Natl Univ, Alma Ata, Kazakhstan
关键词
decision-making under uncertainty; utility; possibility theory; inclusion index; comonotone fuzzy sets; Choquet integral;
D O I
10.1007/978-3-540-73986-9_27
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Local computer networks at major universities are routinely plagued by self-replicating malicious software. Due to the intensive exchange of data and information within the network, when modern viruses, worms and malicious software are introduced they propagate very quickly, leaving little or no time for human intervention. Such environments are ideal for the implementation of the automatic IDS described herein. It employs the Dynamic Code Analyzer (DCA) that detects malicious software during run time by monitoring system calls invoked by individual processes and detecting subsequences (patterns) of system calls indicative of attempted self-replication. A similar approach, also utilizing system calls, is developed for the detection of network worms. Both techniques have the potential for detecting previously unknown malicious software and significantly reducing computer resource utilization. Unfortunately, in comparison with traditional signature based antivirus software, both approaches have a much higher rate of false alarms. To address this shortcoming the authors propose a method to search for evidence of the alarm propagation within the network. This is achieved by aggregating alarms from individual hosts at a server where these alarms can be correlated, resulting in a highly accurate detection capability. Such a system, implementing the presented technology, and capable of significantly reducing the downtime of networked computers owned by students and faculty, is being implemented at the computer network at the Kazakh National University.
引用
收藏
页码:320 / +
页数:2
相关论文
共 50 条
  • [11] GowFed A novel federated network intrusion detection system
    Belenguer, Aitor
    Pascual, Jose A.
    Navaridas, Javier
    JOURNAL OF NETWORK AND COMPUTER APPLICATIONS, 2023, 217
  • [12] A Novel Network Intrusion Detection System Based on CNN
    Chen, Lin
    Kuang, Xiaoyun
    Xu, Aidong
    Suo, Siliang
    Yang, Yiwei
    2020 EIGHTH INTERNATIONAL CONFERENCE ON ADVANCED CLOUD AND BIG DATA (CBD 2020), 2020, : 243 - 247
  • [13] Computer Network Intrusion Detection and Countermeasures
    Xu, Liguo
    Chi, Jingyuan
    3RD INTERNATIONAL CONFERENCE ON SOCIAL SCIENCE, MANAGEMENT AND ECONOMICS (SSME 2017), 2017, : 438 - 443
  • [14] Computer and network security: intrusion detection system using mobile agent
    Bourekkache, Samir
    Kazar, Okba
    Aloui, Ahmed
    Hamouda, Ghazali
    INTERNATIONAL JOURNAL OF ELECTRONIC SECURITY AND DIGITAL FORENSICS, 2022, 14 (04) : 318 - 340
  • [15] The Development of Computer Network Intrusion Detection System Based on Data Mining
    Shan, Chen
    MECHANICAL, MATERIALS AND MANUFACTURING ENGINEERING, PTS 1-3, 2011, 66-68 : 2248 - 2251
  • [16] Design of a novel network intrusion detection system for drone communications
    Zhang, Ruohao
    Condomines, Jean-Philippe
    Larrieu, Nicolas
    Chemali, Riad
    2018 IEEE/AIAA 37TH DIGITAL AVIONICS SYSTEMS CONFERENCE (DASC), 2018, : 241 - 250
  • [17] A Novel Intelligent Ensemble Classifier for Network Intrusion Detection System
    Jabbar, M. A.
    Srinivas, K.
    Reddy, S. Sai Satyanarayana
    PROCEEDINGS OF THE EIGHTH INTERNATIONAL CONFERENCE ON SOFT COMPUTING AND PATTERN RECOGNITION (SOCPAR 2016), 2018, 614 : 490 - 497
  • [18] A Novel Approach for the Design of Network Intrusion Detection System(NIDS)
    Jadhav, Ambarish
    Jadhav, Avinash
    Jadhav, Pradeep
    Kulkarni, Prakash
    2013 INTERNATIONAL CONFERENCE ON SENSOR NETWORK SECURITY TECHNOLOGY AND PRIVACY COMMUNICATION SYSTEM (SNS & PCS), 2013, : 22 - 27
  • [19] A novel adaptive network intrusion detection system for internet of things
    Aravamudhan, Parthiban
    Kanimozhi, K.
    PLOS ONE, 2023, 18 (04):
  • [20] A Novel Intrusion Detection System for Internet of Things Network Security
    Bediya, Arun Kumar
    Kumar, Rajendra
    JOURNAL OF INFORMATION TECHNOLOGY RESEARCH, 2021, 14 (03) : 20 - 37